Friday, 17 August 2018

Database Privileges


A privilege is a right to execute a particular type of SQL statement or to access another user's object. Some examples of privileges include:
                The right to connect to the database (create a session)
                The right to create a table
                The right to select rows from another user's table
                The right to execute another user's stored procedure
Privileges are granted to users so that these users can accomplish tasks required for their job. You should grant a privilege only to a user who absolutely requires the privilege to accomplish necessary work. Excessive granting of unnecessary privileges can lead to compromised security. Because roles allow for easier and better management of privileges, you should normally grant privileges to roles and not to specific users. There are two distinct categories of privileges­ - system privileges and object privileges.
a. System Privileges
A system privilege is the right to perform a particular action, or to perform a particular action on a particular type of object. For example, the privileges to create tables and to delete the rows of any table in a database are system privileges. System privileges are granted to or revoked from users and roles using the SQL commands GRANT and REVOKE.
b. Object Privileges
An object privilege is a privilege or right to perform a particular action on a specific table, view, sequence, procedure, function, or package. For example, the privilege to delete rows from a table is an object privilege. Depending on the type of object, there are different types of object privileges. Object privileges can be granted to, or revoked from; users and roles using the SQL commands GRANT and REVOKE, respectively.

DATABASE INTEGRITY



Database integrity ensures that data in the database is correct and consistent. Database integrity mechanisms can be divided into those mechanisms that support system integrity, and those that enforce relational database integrity properties (like entity integrity. referential integrity. transaction integrity. and business rules).· Traditional system integrity involves ensuring that the data inserted into the system is the same as the contents of that data when it is subsequently retrieved. Further, data must not be altered or deleted by a user who is not authorized to do so.

AUTHENTICATING USERS TO THE DATABASE


A basic security requirement is that you know your users: you must first identify users before you can determine their privileges and access rights. You must know who a user is so that you can audit his or her actions upon the data. Users can be authenticated in a number of different ways before they are allowed to create a database session. In database authentication, you can define users such that the database performs both identification and authentication of users. Passwords are one of the basic forms of authentication. A user must provide the correct password when establishing a connection to prevent unauthorized use of the database. Passwords are assigned when users are created. A database can store a user's password in the data dictionary in an encrypted format. Users can change their passwords at any time.

SECURITY AUDITING


Auditing, a means of monitoring the effectiveness of your security policies, is a critical aspect of system security. Any security policy must maintain a record of system activity to ensure that users are held accountable for their actions. Auditing helps determine unauthorized user behavior that may not otherwise be prevented. It is particularly useful to ensure that authorized system users do not abuse their privileges. Fine-grained auditing can serve as an "early warning system" of users misusing data access privileges, as well as an intrusion detection system for the database itself.

Internet marking in business

These are all encouraging statistics for small business owners.it means you have a very large target market,and as long as you have a website,you have a better chance of being found online than in a phonebook ,filer,or other advertisement.

But…
• There are more than 400 million active websites
• The average person only gives a website 10 seconds before deciding whether the site is worth their time.

Which means that you have got ten seconds or less for the
• Attact the viewer
• Declare your message and
• Get them to take action

A challenge for sure but it is not impossible .to make the most of your websites, you simply need to know a few basic psychological tricks.
Maximize the focal point: most online viewers can only focus on one things at a time. so although you may have a bunch of a great stuff on your site, find the focal point and make sure it’s declaring your messages loud and clear.

Make the message count:
If it take 2-3 seconds to read a sentence better matter to the reader. does your main message apply directly to the needs/wants of your target market? Don not be clever,elusive,or try to reach everyone. Focus on your target market and speak directly to their emotions.

Give them a reason to return: keep your site up to date and full of interesting, valuable information. When your viewers realize that you are constantly updating your site, they are much more likely to return.

Ten seconds is all you have to attract and keep prospects online.so,whatever else you do,be sure to collect lead information off your site.even 10 seconds gives you enough time to start building that relationship with your prospects.